An attacker impersonated LastPass CEO Karim Toubba with an AI voice clone over WhatsApp, but the targeted employee spotted the red flags, ignored it.
Social Engineering Examples·5 sources
In April 2024, LastPass disclosed that one of its employees had been targeted in a social engineering attempt that used an audio deepfake to impersonate the company's CEO, Karim Toubba. The employee received a series of WhatsApp communications, including missed calls, texts, and at least one voicemail, from an account posing as Toubba. The voicemail featured AI-generated audio designed to sound like the CEO, applying pressure through a sense of urgency.
The employee did not comply. Because the contact arrived over WhatsApp, which is not a normal LastPass business communication channel, and because it carried classic social engineering hallmarks such as forced urgency and contact outside normal business hours, the employee grew suspicious, ignored the messages, and reported the incident to the internal security team.
LastPass stated plainly that there was no impact to the company. The security team was able to mitigate and, notably, LastPass chose to publish the incident on its own blog (authored by senior principal intelligence analyst Mike Kosak on April 10, 2024) specifically to raise awareness that deepfake tools are now cheap and accessible enough to be used in run-of-the-mill executive-impersonation fraud, not just by nation-state actors.
Press reporting (BleepingComputer, SecurityWeek, PCMag) noted the cloned voice was likely generated from publicly available recordings of Toubba, such as podcast or video appearances.
This was an attempted attack that was blocked at the human layer. It also stands out because LastPass, a security company that had suffered major breaches in 2022, transparently used its own near-miss as a teaching case for the wider industry.
Recon: the attacker obtained the target employee's contact details and identified LastPass's CEO as a credible impersonation target, drawing on the CEO's public profile and publicly available audio of his voice. Contact: the approach came through WhatsApp, a channel outside sanctioned corporate communications, using an account set up to appear as the CEO.
Rapport and exploitation: the attacker layered multiple touches (missed calls, texts, and a voicemail) and used an AI-generated clone of the CEO's voice to lend authenticity, paired with manufactured urgency to push the employee to act quickly and without verification. Payout: the intended end state was executive-impersonation fraud, but the chain broke at the exploitation stage.
The employee recognized the combination of an unusual channel, off-hours timing, and pressure tactics as a social engineering attempt, disengaged, and escalated to internal security, which neutralized the threat. Described at awareness altitude only, this record does not include any voice-cloning or setup instructions.
Pretext: an urgent request from someone presenting as the company CEO, delivered via a cloned voice to make the demand feel personal and legitimate. Visible red flags (tells): contact through WhatsApp rather than approved internal channels, outreach outside normal business hours, forced urgency pressuring an immediate response, and an unsolicited, out-of-band request from a senior executive to a mid-level employee.
Any one of these should trigger out-of-band verification; together they were enough for the employee to reject and report the contact.
Attempt fully blocked. No funds lost, no systems accessed, no impact to LastPass. The employee ignored the messages and reported to internal security; LastPass mitigated the threat, shared indicators with intelligence-sharing partners and peer security companies, and published the incident publicly to raise industry awareness.
This is a clean example of an AI voice deepfake attack defeated at the human layer, showing that security awareness and a strong reporting culture remain effective even against synthetic-media attacks. It also marks a shift the industry had been warning about: deepfake voice fraud is no longer confined to nation-state actors or headline mega-losses (like the 2024 Hong Kong $25M video-deepfake case), but is now a commodity tactic used in everyday executive-impersonation attempts.
That a security vendor itself was targeted, and chose to disclose a mere attempt with no losses, makes it a rare, citable teaching case.
Out-of-band verification: confirm any urgent or unusual executive request through an established, approved internal channel before acting, never through the channel the request arrived on. Channel discipline: treat requests arriving via non-sanctioned channels (personal WhatsApp, SMS) as inherently suspect. Recognize social engineering hallmarks: forced urgency, off-hours contact, and pressure to bypass process.
No-blame reporting culture: make it easy and expected for employees to escalate suspicious contacts to security. Awareness training that specifically covers AI voice cloning, so a familiar-sounding voice is no longer treated as proof of identity. Executive-impersonation playbooks and code words / verification protocols for high-stakes requests.
Social Engineering Examples. “LastPass Employee Foils AI Voice Deepfake of CEO Karim Toubba (2024)”. Accessed 19 September 2026. https://socialengineeringexamples.com/lastpass-deepfake-voice-ceo-2024
the attacker plausibly gathered the target employee's contact details and identified LastPass's CEO, Karim Toubba, as a credible impersonation target, drawing on his public role and profile and, per press reporting, likely on publicly available audio of his voice such as podcast or video appearances.
employee-facing OSINT exposure (executive names, roles, public appearances) is very hard to eliminate at enterprise scale for anyone publicly identified as a company's CEO; the realistic control assumes attackers already have this and hardens the process it later gets used against, rather than trying to hide it.
consistent with press reporting, the attacker likely used a commercially available or freely accessible AI voice-cloning service to generate synthetic audio mimicking the CEO's voice from those public recordings, and registered a WhatsApp account presenting as the CEO to serve as the delivery channel.
an organization has little ability to stop a third party from using commercial voice-cloning tools or registering a look-alike messaging account; the nearest practical control is the same one used later in the chain, treating a synthetic-sounding voice as never sufficient proof of identity on its own.
the attacker reached the employee through WhatsApp, a channel outside LastPass's sanctioned business communications, opening with a series of missed calls and text messages from the account posing as the CEO.
channel discipline. Requests arriving over personal messaging apps like WhatsApp rather than approved internal business channels should be treated as inherently suspect, regardless of who they claim to be from.
the attacker followed up with at least one voicemail carrying the AI-generated deepfake audio of the CEO's voice, applying forced urgency to push the employee toward an immediate, unverified response.
security awareness training that specifically covers AI voice cloning and classic social engineering hallmarks (forced urgency, off-hours contact, pressure to bypass normal process), paired with a no-blame reporting culture that makes it easy and expected for employees to escalate suspicious contacts rather than act on them.
the likely end goal was an executive-impersonation fraud outcome, such as a fraudulent transfer or a credential/access request, but LastPass's disclosure does not describe a specific ask ever being made or acted on. The employee recognized the unusual channel, off-hours timing, and urgency as social engineering hallmarks, disengaged without complying, and reported it to internal security, so the chain never reached completion.
mandatory out-of-band verification, contacting the purported executive or a known security channel through an already-established method, never the channel the request arrived on, before acting on any urgent or unusual request; executive-impersonation playbooks and pre-agreed verification protocols for high-stakes asks. This is the control that actually stopped the attempt: the employee's disengagement and report to internal security closed the chain before any payout could occur.
Browse by what this case has in common with others in the library.
KnowBe4 unknowingly hired a North Korean operative for a software engineering role after he passed four video interviews using an…
The FBI's IC3 issued a December 2024 public advisory detailing how criminals use AI-generated text, images, voice cloning.
A finance employee in Arup's Hong Kong office wired HK$200M (~US$25.6M) after a video conference in which the CFO and…
A Lapsus$ affiliate bought a contractor's stolen Uber password, flooded them with MFA push prompts, then posed as Uber IT…
Fraudsters impersonating Ubiquiti's CEO and an outside law firm tricked its Hong Kong finance controller into wiring $46.7M abroad.
A fraudster spoofed Wells Fargo's real 800 number nine minutes after a legitimate advisor call, phished a 2FA code from…
A spoofed email impersonating Seagate's CEO tricked an HR/payroll employee into emailing every 2015 W-2 to a scammer.
A Russian-speaking threat actor used disposable, one-conversation ChatGPT accounts to iteratively build and debug a Go-based Windows malware family.
A scammer posing as GCI's CFO emailed payroll and, after the employee's initial pushback, persuaded them to hand over 2015…
Fugitive hacker Kevin Mitnick impersonated a vacationing Novell employee on a "top-secret" project.
Fraudsters impersonating Ubiquiti's CEO and an outside law firm tricked its Hong Kong finance controller into wiring $46.7M abroad.
A Snap Inc. payroll employee emailed the W-2 and payroll data of roughly 700 current and former employees to an…
A fraudster posing as AFGlobal's CEO, backed by a fake KPMG "attorney," pressured the accounting director into wiring $480,000 to…
Vidoc Security Lab, a Polish-founded, US-headquartered cybersecurity startup.
A single phishing email opened by an Anthem subsidiary employee in Feb 2014 seeded a nation-state intrusion that stole data…
North Korean operators spear-phished Sony Pictures staff with fake Apple ID "verify your account" emails, harvested reused credentials.
During an internal OpenAI benchmark run with safety refusals deliberately lowered.
DOJ's first-of-its-kind nationwide takedown charged 61 defendants and five Ahmedabad.